Recommendations to others considering Fractional CISO:
I would suggest any organization who wants to work with them to start getting organized around what exists and what doesn't and what the priorities are. This will help to focus the Fractional team on the most important initiatives and systems for review. I would also suggest that the company dedicate some time from a cross functional set of team members, to make sure there is representation not just from engineering and IT, but also from the business side, especially operations, so that the result set is more holistic and applicable across the business in a meaningful way. I would also suggest that companies allocate some budget towards improving security measures, as acquiring new software or services to keep the business secure is likely to result in some additional expenditure (which is well worth it). Review collected by and hosted on G2.com.
What problems is Fractional CISO solving and how is that benefiting you?
RepairPal has a thriving partner business with many household name partners. We needed assistance in meeting the security and technical review requirements of these partners, and we needed an overall strategy to shore up our security processes and safeguards in general. Working with Fractional CISO not only helped us to meet these security requirements, and acquire new business (while making it through due diligence with existing partners) but it also helped our business through an acquisition. We are now a wholly owned subsidiary of Yelp, Inc and I believe we made it through some of those requirements as a result of the work we did with Fractional CISO. We were also able to avoid major cybersecurity issues and problems, at a time when other major companies in the automotive space were struggling. Over the course of a couple of years, we developed a program and a set of controls we were proud of. Review collected by and hosted on G2.com.